Check: DSN18.06
Defense Switched Network (DSN) STIG:
DSN18.06
(in versions v2 r8 through v2 r7)
Title
Automatic Number Identification (ANI) must be enabled when available. (Cat III impact)
Discussion
ANI must be enabled on modem lines to record access to remote access ports when this function is available. The logs will be maintained and reviewed. ANI logs should be kept for the previous twelve months. ANI logs are ideal for auditing unauthorized accesses and toll-fraud.
Check Content
Review site documentation to confirm ANI is enabled when available. If ANI is available but not enabled on all modems connected to DSN system, this is a finding.
Fix Text
Implement ANI when available on all modems connected to DSN system. Maintain and review ANI logs periodically. ANI logs should be stored for a period of twelve months.
Additional Identifiers
Rule ID: SV-8477r2_rule
Vulnerability ID: V-7991
Group Title: Enable ANI
Expert Comments
CCIs
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Number | Title |
---|---|
No controls are assigned to this check |